> ## Documentation Index
> Fetch the complete documentation index at: https://docs.paypathiq.com/llms.txt
> Use this file to discover all available pages before exploring further.

# client_scope_denied

> Client scope denied (HTTP 403).

| Field          | Value                                                     |
| -------------- | --------------------------------------------------------- |
| Status         | `403`                                                     |
| Problem `type` | `https://docs.paypathiq.com/problems/client_scope_denied` |
| Retryable      | No                                                        |

## When this happens

The key is valid, but its grant does not allow this request. Either the `clientCode` in the URL is unknown or not granted to the key, the grant lacks the scope this operation needs, or the request came from an address outside the grant's IP allowlist. PayPathIQ returns the same error for each case so it does not reveal which Clients exist.

## What to do

Check the `clientCode` and the [scopes](/authentication#scopes) the operation needs. If you use an IP allowlist, check the calling address. Ask your PayPathIQ administrator to verify the grant.
